CVE-2021-43159: Command Injection
A Remote Code Execution (RCE) vulnerability exists in Ruijie Networks Ruijie RG-EW Series Routers up to ReyeeOS 1.55.1915 / EW3.0(1)B11P55 via the setSessionTime function in /cgi-bin/luci/api/common..
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-43159?
CVE-2021-43159 is a Remote Code Execution (RCE) vulnerability in Ruijie Networks Ruijie RG-EW Series Routers.
How severe is CVE-2021-43159?
CVE-2021-43159 has a severity score of 8.8 (high).
Which software versions are affected by CVE-2021-43159?
Ruijie Networks Ruijie RG-EW Series Routers up to ReyeeOS 1.55.1915 / EW_3.0(1)B11P55 are affected by CVE-2021-43159.
How can I fix CVE-2021-43159?
To fix CVE-2021-43159, it is recommended to update Ruijie RG-EW Series Routers to a patched version provided by Ruijie Networks.
Where can I find more information about CVE-2021-43159?
You can find more information about CVE-2021-43159 at the following references: [http://ruijie.com](http://ruijie.com) and [https://seclists.org/fulldisclosure/2022/May/0](https://seclists.org/fulldisclosure/2022/May/0).